« HMRC Data Incident | Main | Data breach analysis »

HMRC - further comment

KingS

I suspect that the England soccer team losing their vital match against Croatia last night was a pre-planned conspiracy to give us something else to talk about other than the HMRC fiasco/scandal/failure/disaster. Or perhaps the loss can be blamed on the fact that half the team have children and so their minds were probably on the consequences of their child benefit data being open to compromise.

There's enough ranting going on elsewhere and I'm sure there are also lots of "timely reminders" about the importance of security being sent around many organisations today.

Let's keep in mind that this incident is a result of failures across each of the three major components of information security governance: people, process, and technology.

In The Times this morning, somebody on the letters page writes that what "alarms me the most is the knowledge that a junior official had access to the data." That fact shouldn't be an issue if the junior official is correctly trained and supervised, knows the importance of the data being handled, and is aware of the consequences of getting things wrong.

If this incident results in the spotlight being shone more closely on information security governance across every organisation that holds private data - including my own - then bring it on.

Bookmark and Share


TrackBack

TrackBack URL for this entry:
http://www.computerweekly.com/cgi-bin/mt/mt-tb.cgi/15261

Comments (1)

Tom:

Just received my "timely reminder" from the CEO...

Post a comment

(If you haven't left a comment here before, you may need to be approved by the site owner before your comment will appear. Until then, it won't appear on the entry. Thanks for waiting.)

About

This page contains a single entry from the blog posted on November 22, 2007 8:32 AM.

The previous post in this blog was HMRC Data Incident.

The next post in this blog is Data breach analysis.

Many more can be found on the main index page or by looking through the archives.